Instructions to use rez0/joblib-compression-scanner-bypass with libraries, inference providers, notebooks, and local apps. Follow these links to get started.
- Libraries
- Scikit-learn
How to use rez0/joblib-compression-scanner-bypass with Scikit-learn:
from huggingface_hub import hf_hub_download import joblib model = joblib.load( hf_hub_download("rez0/joblib-compression-scanner-bypass", "sklearn_model.joblib") ) # only load pickle files from sources you trust # read more about it here https://skops.readthedocs.io/en/stable/persistence.html - Notebooks
- Google Colab
- Kaggle
Logistic Regression (Compressed)
Simple logistic regression saved with joblib compression.
Security Research
This model demonstrates that compressed joblib files (.joblib.gz, .joblib.bz2, etc.) bypass both modelscan v0.8.8 and picklescan v1.0.3 security scanners.
This is a security research PoC for responsible disclosure via huntr.
Reproduction
import joblib
# This will execute arbitrary code - scanner bypass confirmed
model = joblib.load("model.joblib.gz")
- Downloads last month
- -
from huggingface_hub import hf_hub_download import joblib model = joblib.load( hf_hub_download("rez0/joblib-compression-scanner-bypass", "sklearn_model.joblib") ) # only load pickle files from sources you trust # read more about it here https://skops.readthedocs.io/en/stable/persistence.html